Movatterモバイル変換


[0]ホーム

URL:


US20120084840A1 - Terminal connection status management with network authentication - Google Patents

Terminal connection status management with network authentication
Download PDF

Info

Publication number
US20120084840A1
US20120084840A1US13/230,199US201113230199AUS2012084840A1US 20120084840 A1US20120084840 A1US 20120084840A1US 201113230199 AUS201113230199 AUS 201113230199AUS 2012084840 A1US2012084840 A1US 2012084840A1
Authority
US
United States
Prior art keywords
terminal device
information
authentication
address
authenticated
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
US13/230,199
Other versions
US8910248B2 (en
Inventor
Hidemitsu Higuchi
Motohide Nomi
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Alaxala Networks Corp
Original Assignee
Alaxala Networks Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Alaxala Networks CorpfiledCriticalAlaxala Networks Corp
Assigned to ALAXALA NETWORKS CORPORATIONreassignmentALAXALA NETWORKS CORPORATIONASSIGNMENT OF ASSIGNORS INTEREST (SEE DOCUMENT FOR DETAILS).Assignors: HIGUCHI, HIDEMITSU, NOMI, MOTOHIDE
Publication of US20120084840A1publicationCriticalpatent/US20120084840A1/en
Application grantedgrantedCritical
Publication of US8910248B2publicationCriticalpatent/US8910248B2/en
Activelegal-statusCriticalCurrent
Adjusted expirationlegal-statusCritical

Links

Images

Classifications

Definitions

Landscapes

Abstract

A network relay device includes a communication unit, an authentication processing unit, a DHCP snooping processing unit, and a terminal search processing unit. The authentication processing unit creates first information specifying an authenticated terminal device according to web authentication, and manages whether relay of communication data between a terminal device and a node on the specified network is permissible based on the first information. The DHCP snooping processing unit executes snooping of DHCP communication data between a terminal device and a DHCP server, and creates second information specifying a layer 3 address allocated to each terminal device. The terminal search processing unit specifies an authenticated terminal device based on the first information, specifies a layer 3 address allocated to the specified authenticated terminal device based on the second information, and causes the communication unit to send, to the specified layer 3 address, confirmation communication data.

Description

Claims (8)

1. A network relay device, comprising:
a communication unit for sending and receiving communication data,
an authentication processing unit for creating first information specifying an authenticated terminal device according to a result of web authentication that determines whether or not a connection to a specified network by a terminal device connected to the network relay device is permissible, and for managing whether or not relay of communication data between a terminal device and a node on the specified network by the communication unit is permissible based on the first information,
a DHCP snooping processing unit for executing snooping of DHCP communication data relayed by the communication unit between a terminal device and a DHCP server, and for creating second information specifying a layer 3 address allocated to each terminal device based on the DHCP communication data, and
a terminal search processing unit that specifies a terminal device that has already been authenticated based on the first information, specifies a layer 3 address allocated to the specified authenticated terminal device based on the second information, and causes the communication unit to send, to the specified layer 3 address, confirmation communication data for confirming whether or not the specified authenticated terminal is connected to the specified network.
8. A network relay method, comprising:
creating first information specifying an authenticated terminal device according to a result of web authentication that determines whether or not a connection to a specified network by a terminal device is permissible, and managing whether or not relay of communication data between a terminal device and a node on the specified network is permissible based on the first information,
executing snooping of DHCP communication data relayed between a terminal device and a DHCP server, and creating second information specifying a layer 3 address allocated to each terminal device based on the DHCP communication data, and
specifying a terminal device that has already been authenticated based on the first information, specifying a layer 3 address allocated to the specified authenticated terminal device based on the second information, and sending, to the specified layer 3 address, confirmation communication data for confirming whether or not the specified authenticated terminal is connected to the specified network.
US13/230,1992010-10-042011-09-12Terminal connection status management with network authenticationActive2031-12-17US8910248B2 (en)

Applications Claiming Priority (2)

Application NumberPriority DateFiling DateTitle
JP2010225111AJP5364671B2 (en)2010-10-042010-10-04 Terminal connection status management in network authentication
JP2010-2251112010-10-04

Publications (2)

Publication NumberPublication Date
US20120084840A1true US20120084840A1 (en)2012-04-05
US8910248B2 US8910248B2 (en)2014-12-09

Family

ID=45890969

Family Applications (1)

Application NumberTitlePriority DateFiling Date
US13/230,199Active2031-12-17US8910248B2 (en)2010-10-042011-09-12Terminal connection status management with network authentication

Country Status (2)

CountryLink
US (1)US8910248B2 (en)
JP (1)JP5364671B2 (en)

Cited By (25)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US20130094514A1 (en)*2011-10-182013-04-18Huawei Technologies Co., Ltd.Method and switch for sending packet
US20130185771A1 (en)*2012-01-172013-07-18Hitachi Cable, Ltd.Network system
WO2014067314A1 (en)*2012-10-292014-05-08Hangzhou H3C Technologies Co., Ltd.Address processing
US20140237544A1 (en)*2013-02-202014-08-21Alaxala Networks CorporationAuthentication method, transfer apparatus, and authentication server
US20140269506A1 (en)*2013-03-142014-09-18Silver Springs Networks, Inc.Set of optimizations applicable to a wireless networks operating in tv white space bands
US20140297889A1 (en)*2013-03-272014-10-02International Business Machines CorporationSynchronizing ip information of virtual machines
US20160036771A1 (en)*2014-07-292016-02-04Aruba Networks, Inc.Client device address assignment following authentication
US20170063680A1 (en)*2015-08-242017-03-02Alibaba Group Holding LimitedVerifying source addresses associated with a terminal
US9729724B2 (en)*2015-08-042017-08-08Ricoh Company, Ltd.Communication system, relay device, and information processing device
CN107395356A (en)*2012-09-192017-11-24交互数字专利控股公司It is layered certification
US9867114B2 (en)2016-02-042018-01-09Sprint Communications Company L.P.Wireless relay backhaul selection in a data communication network
US9887761B2 (en)2016-01-252018-02-06Sprint Communications Company L.P.Wireless backhaul for wireless relays in a data communication network
US9913165B1 (en)2016-02-032018-03-06Sprint Communications Company L.P.Wireless relay quality-of-service in a data communication network
US9973256B2 (en)2016-01-252018-05-15Sprint Communications Company, L.P.Relay gateway for wireless relay signaling in a data communication network
US9973997B1 (en)2016-03-032018-05-15Sprint Communications Company, L.P.Data communication network to provide network access data sets for user equipment selection of a wireless relay
US10009826B1 (en)2016-01-252018-06-26Sprint Communications Company L.P.Wide area network (WAN) backhaul for wireless relays in a data communication network
CN108259636A (en)*2017-09-292018-07-06新华三技术有限公司A kind of message processing method and device
US10028172B2 (en)2016-03-022018-07-17Sprint Communications Company L.P.Media service delivery over a wireless relay in a data communication network
US10038491B2 (en)2016-03-112018-07-31Sprint Communications Company L.P.Proxy mobile internet protocol (PMIP) tunnel selection by a wireless relay in a data communication network
JP2019102928A (en)*2017-11-302019-06-24三菱電機株式会社Authentication switch device, network system, and authentication method
US20190254010A1 (en)*2016-10-262019-08-15Telefonaktiebolaget Lm Ericsson (Publ)Technique for Communicating Control Information
US10405358B1 (en)2016-03-022019-09-03Sprint Communications Company L.P.Data communication usage tracking in a wireless relay
US10631211B1 (en)2016-03-112020-04-21Sprint Communications Company L.P.User equipment (UE) hand-over of a media session based on wireless relay characteristics
US11425044B2 (en)*2020-10-152022-08-23Cisco Technology, Inc.DHCP layer 2 relay in VXLAN overlay fabric
US11606333B1 (en)*2022-03-042023-03-14Cisco Technology, Inc.Synchronizing dynamic host configuration protocol snoop information

Families Citing this family (5)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
CN104283858B (en)2013-07-092018-02-13华为技术有限公司Control the method, apparatus and system of user terminal access
CN107786613B (en)2016-08-302020-05-12新华三技术有限公司Broadband remote access server BRAS forwarding implementation method and device
JP6667476B2 (en)*2017-06-302020-03-18キヤノン株式会社 Communication device, control method, and program
JP7241620B2 (en)*2019-06-212023-03-17APRESIA Systems株式会社 Authentication switches, network systems and network equipment
WO2023281661A1 (en)*2021-07-072023-01-12日本電気株式会社Information processing device, information processing system, information processing method, and computer-readable medium

Citations (14)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US5668952A (en)*1994-08-081997-09-16International Business Machines CorporationMethod for resolving network address by sending reresolve request to nodes at selected time period after establishing address table, and updating the table with received reply thereto
US20040111640A1 (en)*2002-01-082004-06-10Baum Robert T.IP based security applications using location, port and/or device identifier information
US20050198374A1 (en)*2004-03-042005-09-08Hitachi, Ltd.Network management method and network managing server
US20050270992A1 (en)*2004-05-052005-12-08Cisco Technology, Inc.Internet protocol authentication in layer-3 multipoint tunneling for wireless access points
US20060143440A1 (en)*2004-12-272006-06-29Cisco Technology, Inc.Using authentication server accounting to create a common security database
US20060248229A1 (en)*2005-04-272006-11-023Com CorporationNetwork including snooping
US20070121617A1 (en)*2005-11-292007-05-31Cisco Technology, Inc.Extending sso for DHCP snooping to two box redundancy
US20070256122A1 (en)*2006-04-282007-11-01Ian FooMethod and system for creating and tracking network sessions
US20080072285A1 (en)*2006-08-292008-03-20Cisco Technology, Inc.Method and system for tracking a user in a network
US20080104046A1 (en)*2006-10-252008-05-01Arcsight, Inc.Tracking Changing State Data to Assist in Computer Network Security
US20090304008A1 (en)*2008-06-042009-12-10Alaxala Networks CorporationNetwork relay device and network relay method
US20100106824A1 (en)*2007-02-162010-04-29Gil FriedrichMethod and device for determining network device status
US20110119735A1 (en)*2009-11-132011-05-19Hidemitsu HiguchiApparatus and system effectively using a plurality of authentication servers
US8107396B1 (en)*2006-07-242012-01-31Cisco Technology, Inc.Host tracking in a layer 2 IP ethernet network

Family Cites Families (6)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
JPH03154679A (en)1989-11-131991-07-02Mita Ind Co LtdApparatus for washing drum
JP3154679B2 (en)1996-10-182001-04-09三菱電機株式会社 Error correction decoding apparatus and decoding method for concatenated code
JP3925303B2 (en)2002-05-222007-06-06日本電気株式会社 Layer 2 authentication system and method
JP2005286558A (en)*2004-03-292005-10-13Hitachi Cable Ltd Terminal authentication system
JP4773987B2 (en)*2007-02-012011-09-14アラクサラネットワークス株式会社 Terminal affiliation switching system
JP4909875B2 (en)*2007-11-272012-04-04アラクサラネットワークス株式会社 Packet relay device

Patent Citations (15)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US5668952A (en)*1994-08-081997-09-16International Business Machines CorporationMethod for resolving network address by sending reresolve request to nodes at selected time period after establishing address table, and updating the table with received reply thereto
US20040111640A1 (en)*2002-01-082004-06-10Baum Robert T.IP based security applications using location, port and/or device identifier information
US20050198374A1 (en)*2004-03-042005-09-08Hitachi, Ltd.Network management method and network managing server
US20050270992A1 (en)*2004-05-052005-12-08Cisco Technology, Inc.Internet protocol authentication in layer-3 multipoint tunneling for wireless access points
US20060143440A1 (en)*2004-12-272006-06-29Cisco Technology, Inc.Using authentication server accounting to create a common security database
US20090300178A1 (en)*2005-04-272009-12-03Peter SaundersonNetwork including snooping
US20060248229A1 (en)*2005-04-272006-11-023Com CorporationNetwork including snooping
US20070121617A1 (en)*2005-11-292007-05-31Cisco Technology, Inc.Extending sso for DHCP snooping to two box redundancy
US20070256122A1 (en)*2006-04-282007-11-01Ian FooMethod and system for creating and tracking network sessions
US8107396B1 (en)*2006-07-242012-01-31Cisco Technology, Inc.Host tracking in a layer 2 IP ethernet network
US20080072285A1 (en)*2006-08-292008-03-20Cisco Technology, Inc.Method and system for tracking a user in a network
US20080104046A1 (en)*2006-10-252008-05-01Arcsight, Inc.Tracking Changing State Data to Assist in Computer Network Security
US20100106824A1 (en)*2007-02-162010-04-29Gil FriedrichMethod and device for determining network device status
US20090304008A1 (en)*2008-06-042009-12-10Alaxala Networks CorporationNetwork relay device and network relay method
US20110119735A1 (en)*2009-11-132011-05-19Hidemitsu HiguchiApparatus and system effectively using a plurality of authentication servers

Non-Patent Citations (2)

* Cited by examiner, † Cited by third party
Title
Suzuki, S.; Kondo, S., "Dynamic Network Separation for IPv6 Network Security Enhancement," Applications and the Internet Workshops, 2005. Saint Workshops 2005. The 2005 Symposium on , vol., no., pp.22,25, 31-04 Jan. 2005.*
Yun Yang; Jia Mi, "Design of DHCP protocol based on access control and SAKA encryption algorithm," Computer Engineering and Technology (ICCET), 2010 2nd International Conference on , vol.6, no., pp.V6-264,V6-267, 16-18 April 2010.*

Cited By (45)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US20130094514A1 (en)*2011-10-182013-04-18Huawei Technologies Co., Ltd.Method and switch for sending packet
US20130185771A1 (en)*2012-01-172013-07-18Hitachi Cable, Ltd.Network system
US9130940B2 (en)*2012-01-172015-09-08Hitachi Metals, Ltd.Network system
CN107395356A (en)*2012-09-192017-11-24交互数字专利控股公司It is layered certification
WO2014067314A1 (en)*2012-10-292014-05-08Hangzhou H3C Technologies Co., Ltd.Address processing
US20140237544A1 (en)*2013-02-202014-08-21Alaxala Networks CorporationAuthentication method, transfer apparatus, and authentication server
EP2770689A1 (en)*2013-02-202014-08-27ALAXALA Networks CorporationAuthentication method, transfer apparatus, and authentication server
US9258305B2 (en)*2013-02-202016-02-09Alaxala Networks CorporationAuthentication method, transfer apparatus, and authentication server
US20140269506A1 (en)*2013-03-142014-09-18Silver Springs Networks, Inc.Set of optimizations applicable to a wireless networks operating in tv white space bands
US9686735B2 (en)*2013-03-142017-06-20Silver Spring Networks, Inc.Set of optimizations applicable to a wireless networks operating in TV white space bands
US20140297889A1 (en)*2013-03-272014-10-02International Business Machines CorporationSynchronizing ip information of virtual machines
US10771431B2 (en)*2013-03-272020-09-08Lenovo Enterprise Solutions (Singapore) Pte. Ltd.Synchronizing IP information of virtual machines
US11438303B2 (en)2014-07-292022-09-06Hewlett Packard Enterprise Development LpClient device address assignment following authentication
US9712489B2 (en)*2014-07-292017-07-18Aruba Networks, Inc.Client device address assignment following authentication
US11075878B2 (en)2014-07-292021-07-27Hewlett Packard Enterprise Development LpClient device address assignment following authentication
US20160036771A1 (en)*2014-07-292016-02-04Aruba Networks, Inc.Client device address assignment following authentication
US10257158B2 (en)2014-07-292019-04-09Hewlett Packard Enterprise Development LpClient device address assignment following authentication
US9729724B2 (en)*2015-08-042017-08-08Ricoh Company, Ltd.Communication system, relay device, and information processing device
US20170063680A1 (en)*2015-08-242017-03-02Alibaba Group Holding LimitedVerifying source addresses associated with a terminal
US10135784B2 (en)*2015-08-242018-11-20Alibaba Group Holding LimitedVerifying source addresses associated with a terminal
US10020870B2 (en)2016-01-252018-07-10Sprint Communications Company L.P.Wireless backhaul for wireless relays in a data communication network
US10009826B1 (en)2016-01-252018-06-26Sprint Communications Company L.P.Wide area network (WAN) backhaul for wireless relays in a data communication network
US9973256B2 (en)2016-01-252018-05-15Sprint Communications Company, L.P.Relay gateway for wireless relay signaling in a data communication network
US10299315B2 (en)2016-01-252019-05-21Sprint Communications Company L.P.Wide Area Network (WAN) backhaul for wireless relays in a data communication network
US9887761B2 (en)2016-01-252018-02-06Sprint Communications Company L.P.Wireless backhaul for wireless relays in a data communication network
US10439704B2 (en)2016-01-252019-10-08Sprint Communications Company L.P.Relay gateway for wireless relay signaling in a data communication network
US9913165B1 (en)2016-02-032018-03-06Sprint Communications Company L.P.Wireless relay quality-of-service in a data communication network
US9867114B2 (en)2016-02-042018-01-09Sprint Communications Company L.P.Wireless relay backhaul selection in a data communication network
US10142911B2 (en)2016-02-042018-11-27Sprint Communications Company L.P.Wireless relay backhaul selection in a data communication network
US10028172B2 (en)2016-03-022018-07-17Sprint Communications Company L.P.Media service delivery over a wireless relay in a data communication network
US11259339B2 (en)2016-03-022022-02-22Sprint Communications Company L.P.Data communication usage tracking in a wireless relay
US10405358B1 (en)2016-03-022019-09-03Sprint Communications Company L.P.Data communication usage tracking in a wireless relay
US9973997B1 (en)2016-03-032018-05-15Sprint Communications Company, L.P.Data communication network to provide network access data sets for user equipment selection of a wireless relay
US10631211B1 (en)2016-03-112020-04-21Sprint Communications Company L.P.User equipment (UE) hand-over of a media session based on wireless relay characteristics
US10666349B2 (en)2016-03-112020-05-26Sprint Communications Company L.P.Proxy mobile internet protocol (PMIP) tunnel selection by a wireless relay in a data communication network
US11218919B2 (en)2016-03-112022-01-04Sprint Communications Company L.P.User equipment (UE) hand-over of a media session based on wireless relay characteristics
US10038491B2 (en)2016-03-112018-07-31Sprint Communications Company L.P.Proxy mobile internet protocol (PMIP) tunnel selection by a wireless relay in a data communication network
US20190254010A1 (en)*2016-10-262019-08-15Telefonaktiebolaget Lm Ericsson (Publ)Technique for Communicating Control Information
US20240205937A1 (en)*2016-10-262024-06-20Telefonaktiebolaget Lm Ericsson (Publ)Technique for Communicating Control Information
CN108259636A (en)*2017-09-292018-07-06新华三技术有限公司A kind of message processing method and device
JP2019102928A (en)*2017-11-302019-06-24三菱電機株式会社Authentication switch device, network system, and authentication method
US11425044B2 (en)*2020-10-152022-08-23Cisco Technology, Inc.DHCP layer 2 relay in VXLAN overlay fabric
US11606333B1 (en)*2022-03-042023-03-14Cisco Technology, Inc.Synchronizing dynamic host configuration protocol snoop information
US20230283589A1 (en)*2022-03-042023-09-07Cisco Technology, Inc.Synchronizing dynamic host configuration protocol snoop information
US12088552B2 (en)*2022-03-042024-09-10Cisco Technology, Inc.Synchronizing dynamic host configuration protocol snoop information

Also Published As

Publication numberPublication date
JP5364671B2 (en)2013-12-11
US8910248B2 (en)2014-12-09
JP2012080418A (en)2012-04-19

Similar Documents

PublicationPublication DateTitle
US8910248B2 (en)Terminal connection status management with network authentication
CN111901135B (en) A data analysis method and device
JP4802263B2 (en) Encrypted communication system and gateway device
EP2731313B1 (en)Distributed cluster processing system and message processing method thereof
US8601568B2 (en)Communication system for authenticating or relaying network access, relaying apparatus, authentication apparatus, and communication method
CN1905495B (en)Network monitoring device, network monitoring method, network system and network communication method
JP5508273B2 (en) Network location service
JP2005020112A (en) Network setting system, management device, terminal device, and network setting method
CN111542049B (en)Cloud-based discovery of access point controllers
JP2006203300A (en) Transfer device, access permission determination method and program
JP6106558B2 (en) Communication system and authentication switch
JP2010239591A (en)Network system, relay device, and method of controlling network
US8239930B2 (en)Method for controlling access to a network in a communication system
JP5915314B2 (en) Communication device
JP3154679U (en) Relay device and network system
US8488618B1 (en)Dual-connect service box with router bypass
JP2008227600A (en) Communication jamming device and communications jamming program
CN116389173B (en)Method, system, medium and equipment for realizing enterprise production network ad hoc network
JP5126258B2 (en) ACCESS CONTROL SYSTEM, ACCESS CONTROL DEVICE, ACCESS CONTROL METHOD USED FOR THEM, AND PROGRAM THEREOF
JP5273078B2 (en) VPN router, server and communication system
JP5800089B2 (en) Relay device, information processing device, access control method, and program
US20210068109A1 (en)Method for bonding a plurality of radio connections in a wireless network
WO2022254517A1 (en)Communication system and communication control method
WO2015025817A1 (en)Communication terminal, communication system, communication method, and program
CN120165970A (en) Guest WiFi isolation method, device, equipment and storage medium based on PON network

Legal Events

DateCodeTitleDescription
ASAssignment

Owner name:ALAXALA NETWORKS CORPORATION, JAPAN

Free format text:ASSIGNMENT OF ASSIGNORS INTEREST;ASSIGNORS:HIGUCHI, HIDEMITSU;NOMI, MOTOHIDE;REEL/FRAME:026887/0674

Effective date:20110908

STCFInformation on status: patent grant

Free format text:PATENTED CASE

FEPPFee payment procedure

Free format text:PAYOR NUMBER ASSIGNED (ORIGINAL EVENT CODE: ASPN); ENTITY STATUS OF PATENT OWNER: LARGE ENTITY

MAFPMaintenance fee payment

Free format text:PAYMENT OF MAINTENANCE FEE, 4TH YEAR, LARGE ENTITY (ORIGINAL EVENT CODE: M1551)

Year of fee payment:4

MAFPMaintenance fee payment

Free format text:PAYMENT OF MAINTENANCE FEE, 8TH YEAR, LARGE ENTITY (ORIGINAL EVENT CODE: M1552); ENTITY STATUS OF PATENT OWNER: LARGE ENTITY

Year of fee payment:8


[8]ページ先頭

©2009-2025 Movatter.jp